TERMS OF REFERENCE (TORs) OF CONSULTANTS - (EAG) 1. Reporting Function. The Applications Consultant reports directly to the CIO



Similar documents
Qulliq Energy Corporation Job Description

INFORMATION TECHNOLOGY ENGINEER V

How To Be A Data Security Analyst

Director, IT Security District Office Kern Community College District JOB DESCRIPTION

SENIOR SYSTEMS ANALYST

Australian Computer Society ANZSCO ICT Code descriptions v Further updates will be issued in

Appendix A-2 Generic Job Titles for respective categories

Stepping Through the Info Security Program. Jennifer Bayuk, CISA, CISM

Kiefer Consulting, Inc Job Opportunities

performs a variety of complicated tasks, may lead and direct the work of others, may report directly to a project

SCHOOL DISTRICT OF MARION COUNTY JOB CLASSIFICATION DESCRIPTION LEVEL/POSITION: COMPUTER NETWORK SPECIALIST 4.78

SENIOR INFORMATION SYSTEMS MANAGER

Cisco Advanced Services for Network Security

Information Security Officer (# 1773) Salary: Grade 25 ($81,808-$102,167) / Grade 27 ($90,595 to $113,141) Summary of Duties. Minimum Qualifications

How To Protect Your Network From Attack From A Network Security Threat

OCCUPATIONAL GROUP: Information Technology. CLASS FAMILY: Security CLASS FAMILY DESCRIPTION:

Firewall Administration and Management

Request for Expressions of Interest IT System Consultant

Fear Not What Security Can Do to Your Firm; Instead, Imagine What Your Firm Can Do When Secured!

CLASSIFICATION SPECIFICATION FORM

Under moderate supervision, tests and troubleshoots hardware and/or software problems, makes repairs. May supervise or provide leadership to staff.

Information Technology Cluster

Managed Security Services for Data

JOB DESCRIPTION SYSTEMS DEVELOPMENT OFFICER - Grade 6

General Dynamics One Source, LLC Alliant GS00Q09BGD0030 Labor Category Descriptions April

Key Considerations for Information Technology Governance. 900 Monroe NW Grand Rapids, MI (616)

JOB DESCRIPTION. DATE ISSUED: 07/12 FLSA: Exempt PTO: VCS TITLE. Service Desk Analyst III JOB SUMMARY

Position Number. Reports to Manager, Solutions Development Functional Auth HRM Auth Region Sydney Date Date Function ITSC Signature Signature

Job Description. HP Advanced Solutions Inc. Position Title: Senior Database Administrator Classification: IS27

IT Risk & Security Specialist Position Description

Cisco Unified Communications and Collaboration technology is changing the way we go about the business of the University.

JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # IT Tech II AD Grid Level 5(g) #123 Network Support Technician

IT Strategic Plan INFRASTRUCTURE PROPERTIES AND PLANNING

JOB DESCRIPTION CONTRACTUAL POSITION

JOB DESCRIPTION. Core competency, experience, qualification and other skills required are as under :

Request for Resume (RFR) CATS+ Master Contract All Master Contract Provisions Apply. Section 1 General Information

The Protection Mission a constant endeavor

Information Security Lead (BISRID_054) Solution Architect, (Head of Business Assurance)

Job Description Information Services Coordinator

SALEM-KEIZER PUBLIC SCHOOLS JOB DESCRIPTION 7/09 APPLICATION DEVELOPER I Revised Date Job Title Index

RFP Attachment C Classifications

II. Supports the department in implementing the strategy established by management.

SACRAMENTO CITY UNIFIED SCHOOL DISTRICT Position Description. DEPARTMENT: Technology Services SALARY: Range 13 Salary Schedule A

University of Central Florida Class Specification Administrative and Professional. Information Security Officer

FUNCTIONAL AREA 12. Network Administration (NET)

Department of Information and Technology Management

Microsoft Services Premier Support. Security Services Catalogue

IT Networking and Security

Cybersecurity and internal audit. August 15, 2014

Certified Information Security Manager (CISM)

Please Note: Temporary Graduate 485 skills assessments applicants should only apply for ANZSCO codes listed in the Skilled Occupation List above.

Domain 1 The Process of Auditing Information Systems

Functional Area 3. Skill Level 301: Applications Systems Analysis and Programming Supervisor (Mercer 1998 Job 011)

Business Analyst III. Location: Huntsville, AL. Position Overview: Defines requirements and process for the Team.

Cisco Network Optimization Service

HI-TECH CO. SYSTEMS. Company Profile

Select IT Consulting Services RFP Technical and Network Support Specialist Services (Lot Group C)

SALEM-KEIZER PUBLIC SCHOOLS JOB DESCRIPTION. 05/12 Database Administration Revised Date Job Title Index

How does IBM deliver cloud security? An IBM paper covering SmartCloud Services 1

NETWORKING ENTERPRISE SPECIALIST VoIP Project (New position)

Jun 2015 to Aug Computer Science/ Technology related. Information Systems

state of south dakota Bureau of Information & Telecommunications Provide a Reliable, Secure & Modern Infrastructure services well-designed innovative

Linux Technologies QUARTER 1 DESKTOP APPLICATIONS - ESSENTIALS QUARTER 2 NETWORKING AND OPERATING SYSTEMS ESSENTIALS. Module 1 - Office Applications

Contents QUALIFICATIONS PACK - OCCUPATIONAL STANDARDS FOR TELECOM INDUSTRY. Introduction. Qualifications Pack- Telecom Network Security Technician

Information Technology Engineers Examination. Information Security Specialist Examination. (Level 4) Syllabus

DevOps Engineer Position Description

Managed Services. Business Intelligence Solutions

Head of Human Resources (Primary line manager) and Head of ICT

JOB TITLE: CURRENT CLASSIFICATION/GRID POSITION # IT Tech I AD Grid Level 5(h) #68 (Service Desk)

TOP 10 WAYS TO ADDRESS PCI DSS COMPLIANCE. ebook Series

SRA International Managed Information Systems Internal Audit Report

INFORMATION SYSTEMS ANALYST III

Position Description

Microsoft Technologies

F. No. E 12020/03/2015-E&A Food Safety and Standards Authority of India

MANAGEMENT CONSULTING ENTERPRISE SOLUTIONS IT OUTSOURCING. CAPABILITY briefing

University of Central Florida Class Specification Administrative and Professional. IT ERP Business Analyst Senior

Office of the Chief Information Officer

Transcription:

TERMS OF REFERENCE (TORs) OF CONSULTANTS - (EAG) Consultant - Enterprise Systems & Applications 1. Reporting Function. The Applications Consultant reports directly to the CIO 2. Qualification and Experience a. Master s degree from a well reputable foreign university in the relevant field of computer sciences. b. Minimum of 12 years of progressively responsible experience in IT, systems, policies and procedures and project management. 5 years of experience must be in technical leadership role in large enterprises. c. Preference given to certifications from PMI, ISACA or CompTIA. d. Strong understanding and knowledge of information technologies, current and emerging trends, and best practices. e. Working technical experience with designing, building, installing, configuring and supporting large enterprise application systems. f. Proven communication, analytical, and problem-solving skills to help maximize the benefit of IT system investments and to assist in implementing new computer systems. g. Project management experience. h. Good understanding of the organization s goals and objectives. j. Knowledge of applicable data privacy practices and laws. k. Good written and oral communication skills. l. Strong technical documentation skills. m. Good interpersonal skills. n. Ability to conduct research into technology issues, standards and products as required. o. Ability to present ideas in user-friendly language. p. Highly self motivated and directed. q. Keen attention to detail. r. Proven analytical and problem-solving abilities. s. Ability to effectively prioritize and execute tasks in a highpressure t. Strong customer service orientation. u. Experience working in a team-oriented, collaborative 1 of 12

3. Objectives of Assignment a. Conceptualize, evaluate, review, and assess application systems and services needs across the organization. b. Develop and design high level requirements and transform into technical requirements and IT components. Consequently, formulate project proposals and associated PC1 documents. c. Develop, implement, and oversee IT policies and procedures to ensure the integrity and availability of production application systems. d. Provide technical guidance for design, integration and implementation of production systems. e. Provide technical assistance during implementation and post implementation phases of application systems projects. 4. Responsibilities a Plan, coordinate, and supervise all activities during conceptualization phase of a potential application system project and subsequent approval processes. b. Apply proven communication skills, problem-solving skills, and knowledge of best practices to guide organizational entities on issues related to the design, development, and deployment of mission-critical information and software systems. c. Devise and design business process requirements for all ITrelated business, financial, and operations systems critical to core organizational functions. This includes researching and analyzing data in support of business functions, process knowledge, and systems requirements. d. Responsible for proactively generating and compiling reports based on his findings, complete with recommended improvements to or new requirements for business processes and operational procedures. e. Participate in strategic design and implementation of in-house information systems and networked software architectures that support core organizational functions, and assure their high availability. f. Support the process of obtaining organizational commitment for all systems and software plans, as well as evaluate and select all technologies required to complete those plans. g. Provide technical leadership across the organization, from strategic decision making down to the project planning level for application systems. 2 of 12

h. Conduct research and make recommendations on various technologies, products, services, protocols, and standards in support of procurement and development efforts. j. Interact, report and provide necessary feedback on related technical matters to peers and other stake-holders. k. Assess and develop long-term strategic goals for production systems in conjunction with project managers and department managers. l. Work with application development/contractor staff to develop application system architectures, standards, and quality assurance policies and procedures. m. Support installation and configuration of relevant network components to ensure application systems access as well as database consistency and integrity. n. Respond to and resolve application systems access and performance issues. o. Develop, implement, and maintain change control and testing processes for modifications to application. p. Create, or support creation of, customized applications in response to business user needs. 3 of 12

Consultant - Database 1. Reporting Function. The Database Consultant reports directly to the CIO. 2. Qualification and Experience a. Master s degree from a well reputable foreign university in the relevant field of computer sciences. b. Minimum of 12 years of progressively responsible experience in IT, systems, policies and procedures and project management. 5 years of experience must be in technical leadership role in large enterprises for design and implementation of large scale complex enterprise wide database systems. c. At least certified in any two of: Oracle DBA OCP or preferably OCM, MCDBA, IBM Advanced Database Administration. d. Strong understanding of database structures, theories, principles, and practices. e. Comprehensive knowledge of database products and standards, ability to conduct comparative analysis of competing products and technologies. f. Working technical experience with designing, building, installing, configuring and supporting database servers based on latest release of MS SQL and Oracle. Knowledge of DB2 would be added advantage. g. Hands-on database tuning and troubleshooting experience. h. Project management experience. j. Good understanding of the organization s goals and objectives. k. Knowledge of applicable data privacy practices and laws. l. Good written and oral communication skills. m. Strong technical documentation skills. n. Good interpersonal skills. o. Ability to conduct research into database issues, standards and products as required. p. Ability to present ideas in user-friendly language. q. Highly self motivated and directed. r. Keen attention to detail. s. Proven analytical and problem-solving abilities. t. Ability to effectively prioritize and execute tasks in a highpressure u. Strong customer service orientation. v. Experience working in a team-oriented, collaborative environment 4 of 12

3. Objectives of Assignment a. To direct, evaluate, review, and manage database resources and services across the organization while ensuring high levels of data quality, security and integrity. b. Develop, implement, and oversee database policies and procedures to ensure the integrity and availability of databases and their accompanying software. c. Provide technical guidance for design, integration and implementation of production databases d. Provide technical assistance during monitoring, maintenance, and performance tuning of production databases. 4. Responsibilities a. Assess and develop long-term strategic goals for production databases in conjunction with data owners and department managers. b. Work with application development/contractor staff to develop database architectures, standards, and quality assurance policies and procedures. c. Create models for new database development and/or changes to existing ones. d. Support installation and configuration of relevant network components to ensure database access as well as database consistency and integrity. e. Respond to and resolve database access and performance issues. f. Monitor database system details within the database, including stored procedures and execution time, and implement efficiency improvements. g. Design and implement redundant systems, policies, and procedures for disaster recovery and data archiving to ensure effective protection and integrity of data assets. h. Monitor, optimize and allocate physical data storage for database systems. j. Plan and coordinate data migrations between systems. k. Develop, implement, and maintain change control and testing processes for modifications to databases. l. Create, or support creation of, required reports in response to business user needs. m. Conduct research and make recommendations on database products, services, protocols, and standards in support of procurement and development efforts. n. Interact, report and provide necessary feedback on related technical matters to peers and other stake-holders. 5 of 12

o. Perform database transaction and security audits. p. Establish appropriate end-user database access control levels. q. Develop routines for end-users to facilitate best practices database use. r. Manage and/or provide guidance to junior members of the team. 6 of 12

Consultant - Enterprise IT Infrastructure (Architecture Planning) 1. Reporting Function. The IT Infrastructure Consultant reports directly to the CIO. 2. Qualification and Experience a. Master s degree from a well reputable foreign university in relevant field of Computer Sciences or Systems Engineering or Communications Engineering. b. Minimum of 12 years of progressively responsible experience in information technology, systems, policies and procedures and project management. 5 years of experience must be in technical leadership role in large enterprises. c. Experience with management of large IT Infrastructure or as an architect for large IT Infrastructure. d. Certifications in Networking, Security, Storage and Telecommunication Technologies. e. Strong understanding and knowledge of infra-structure technologies, current and emerging trends, and best practices. f. Working technical experience with designing, building, installing, configuring and supporting large and complex IT Infrastructure. g. Experience with Data Centers, Storage Technologies, Networking Technologies, Access Networks, Wireless/Mobile Technologies, Servers, Packet Telephony, Video Conferencing, Security, Network Management and Monitoring. h. In-depth knowledge of networking technologies and understanding of networking issues like Quality of Service, High Availability, Reliability and Network Performance. j. Good knowledge of the industry direction and trends as well as recent advances in relevant technologies. k. Technical experience to be able to assess vendor solutions independent of marketing hype. l. Exposure to the standardization process for various relevant technologies and a keen interest to keep track of various industry standardization activities. m. Appreciation of Application Systems and Business Processes. n. Proven communication, analytical, and problem-solving skills including Project management experience. o. Good understanding of the organization s goals and objectives. p. Knowledge of applicable data privacy practices and laws. q. Good written and oral communication skills. r. Strong technical documentation skills. s. Good interpersonal skills. 7 of 12

t. Ability to conduct research into technology issues, standards and products as required. u. Ability to present ideas in user-friendly language. v. Highly self motivated and directed. w. Keen attention to detail. x. Proven analytical and problem-solving abilities. y. Ability to effectively prioritize and execute tasks in a highpressure z. Strong customer service orientation. aa. Experience working in a team-oriented, collaborative 3. Objectives of Assignment a. Conceptualize, evaluate, review, and assess the IT Infrastructure needs across the organization. b. Develop and design high level requirements and transform into technical requirements and IT Infrastructure components. Consequently, formulate project proposals and associated PC1 documents c. Provide technical assistance during implementation and post implementation phases of IT Infrastructure projects. d. Enable the transition to a converged IT infrastructure. e. Develop and implement a blue-print for Business Continuity Services. f. Ensure alignment with Applications to enable an Application Centric IT Infrastructure. 4. Responsibilities a. Plan, coordinate, and supervise all activities during conceptualization and assessment phase of a potential IT infrastructure project and subsequent approval processes. b. Apply proven communication skills, problem-solving skills, and knowledge of best practices to guide organizational entities on issues related to the design, development, and deployment of mission-critical IT Infrastructure. c. Generate requirements for IT infrastructure based on the application and communication systems that need to be implemented in the organization. d. Develop a roadmap for the implementation and upgrade of IT & Communications infrastructure across the organization. e. Support the process of obtaining organizational commitment for IT Infrastructure projects, as well as evaluate and select all technologies required to complete those plans. 8 of 12

f. Provide technical leadership across the organization, from strategic decision making down to the project planning level for IT Infrastructure. g. Responsible for proactively generating and compiling reports regarding the organization needs for a dependable IT Infrastructure. h. Conduct research and make recommendations on various technologies, products, services, protocols, and standards in support of procurement and development efforts. j. Interact, report and provide necessary feedback on related technical matters to peers and other stake-holders. k. Assess and develop long-term strategic goals for IT Infrastructure in conjunction with project managers and department managers. l. Work with IT/contractor staff to develop network design and architecture, standards, and quality assurance policies and procedures. m. Help implement policies and procedures for administration of IT Infrastructure as well as a technical support organization. n. Support Performance Optimization activities. 9 of 12

Consultant - Security 1. Reporting Function. The Security Consultant reports directly to the CIO. 2. Qualification and Experience a. Master s degree from a well reputable foreign university in the relevant field of computer sciences. b. Minimum of 12 years of progressively responsible experience in information technology, security, systems, policies and procedures and project management. 5 years of experience must be in a senior lead role as security architect or security auditor in large organization. c. Ideal candidate may have acted as a CSO for large organization. d. Certifications in Security System Audit (ISO17799/BS7799 or equivalent) as well as in various Security Technologies. e. Strong understanding of Security theories, principles, and best practices. f. Experience with setting up Security Policies and Procedures. g. Working technical experience with designing, building, installing, configuring and supporting network security infrastructure including Firewalls, VPN and IDS/IPS. h. Experience with Penetration Testing. j. Experience with Business Continuity Planning, Auditing and Risk Management. k. Experience with Security Operations Center (SoC) and Managed Security Services l. Expertise in Certificate Infrastructure and Key Management Technologies. m. Expertise in Directory Services and Technologies. n. Expertise in Network Forensics. o. Appreciation of legal aspects of security, privacy and digital signatures. p. Project management experience. q. Good understanding of the organization s goals and objectives. r. Knowledge of applicable data privacy and information security practices and laws. s. Good written and oral communication skills. t. Strong technical documentation skills. u. Good interpersonal skills. v. Ability to conduct research into security issues, standards and products as required. w. Ability to present ideas in user-friendly language. x. Highly self motivated and directed. 10 of 12

y. Keen attention to detail. z. Proven analytical and problem-solving abilities. aa. Ability to effectively prioritize and execute tasks in a highpressure bb. Strong customer service orientation. cc. Experience working in a team-oriented, collaborative 3. Objectives of Assignment a. To provide vision and leadership for developing and supporting security initiatives through planning and implementation of enterprise IT systems, business operation, and facility defenses against security breaches and vulnerability issues. b. Responsible for auditing existing systems, while directing the administration of security policies, activities, and standards. c. To direct, evaluate, review, and manage security of IT Infrastructure and application systems across the organization. d. Responsible for the Information Security Life-cycle of Security Risk Assessment, Policy Creation, Security Planning, Policy Implementation and Enforcement and Monitoring and Management e. Develop, implement, and oversee security policies and procedures to ensure the integrity of IT Infrastructure and Application Systems across the enterprise. f. Provide direction and guidance to the organizational activity of service and resource profiling g. Provide technical guidance for design and implementation of the security infrastructure. h. Provide technical assistance during monitoring, maintenance, and performance of the security infrastructure. 4. Responsibilities a. Develop Security Framework catering for Content and Application Security, Incident Response and Disaster Recovery Plan, Auditing and Review Policy, Network Security, Application Systems Security, Organization interconnectivity Policy, Internet Accessibility Policy and Encryption and Key Management. b. Responsible for leading the Service Profiling and Resource Profiling effort across the organization. c. Prepare Light-Weight Policy Documents to be implemented across the organization. 11 of 12

d. Conduct Information Security Audits. e. Provide technology guidance in the design of the Directory Services and Certificate Authority Infrastructure for the Organization. f. Responsible for development and implementation of Disaster Recovery / Business Continuity Plan for the Organization. g. Support installation and configuration of relevant security components to ensure security, integrity and privacy of data. h. Implement a Security Monitoring strategy for the organization. j. Champion the cause of setting up a SoC/Managed Security Services Infrastructure for the organization. k. Set up an Incident Response Team and monitor its performance. l. Develop a threat mitigation strategy for the Organization. m. Oversee the investigation of security breaches and assist with disciplinary and legal matters associated with such breaches as necessary. n. Facilitate the organization in Network Forensics Analysis. o. Support the organization with legal issues with regards to Information Security and Privacy. p. Work with consultants/contractor staff to develop security architecture, standards, and quality assurance policies and procedures. q. Conduct research and make recommendations on security products, services, protocols, and standards in support of procurement and development efforts. r. Interact, report and provide necessary feedback on related technical matters to peers and other stake-holders. s. Manage and/or provide guidance to other members of the team. Working & Other Conditions - EAG 1. Incumbents may be Foreigner / Pakistani origin. 2. Place of work would be at Islamabad / Rawalpindi. 3. Duration of contact 2 years extendable to 3 years. 12 of 12